VPN Network Service - Netmaker makes networks with WireGuard. Netmaker automates fast, secure, and distributed virtual networks.
#nebula #tailscale #mesh #vpn #golang #go #overlay #meshvpn

Matthew R. Kasun a8b1d48e02 more certificate cleanup %!s(int64=3) %!d(string=hai) anos
.github a8073e8d86 build on linux; windows no work %!s(int64=3) %!d(string=hai) anos
auth 1e77a9eca4 remove new line to fix warning: fmt.Fprintln arg list ends with redundant newline %!s(int64=3) %!d(string=hai) anos
compose 7152f6ccd4 remove references to grpc/comms net %!s(int64=3) %!d(string=hai) anos
config 747d6bc692 remove comms network leftovers %!s(int64=3) %!d(string=hai) anos
controllers 747d6bc692 remove comms network leftovers %!s(int64=3) %!d(string=hai) anos
database 5e327fdea4 set max open conns to 1 for sqlite %!s(int64=3) %!d(string=hai) anos
docker 8f8272aad7 certificate cleanup %!s(int64=3) %!d(string=hai) anos
functions 2b1f20e94b changes from code review %!s(int64=3) %!d(string=hai) anos
img 643093c133 adding image folder %!s(int64=3) %!d(string=hai) anos
kube 7152f6ccd4 remove references to grpc/comms net %!s(int64=3) %!d(string=hai) anos
logger e1b590d43f another attempt at fixing logging %!s(int64=3) %!d(string=hai) anos
logic 747d6bc692 remove comms network leftovers %!s(int64=3) %!d(string=hai) anos
models 747d6bc692 remove comms network leftovers %!s(int64=3) %!d(string=hai) anos
mq 7152f6ccd4 remove references to grpc/comms net %!s(int64=3) %!d(string=hai) anos
netclient a8b1d48e02 more certificate cleanup %!s(int64=3) %!d(string=hai) anos
nginx 7152f6ccd4 remove references to grpc/comms net %!s(int64=3) %!d(string=hai) anos
scripts 7152f6ccd4 remove references to grpc/comms net %!s(int64=3) %!d(string=hai) anos
servercfg 747d6bc692 remove comms network leftovers %!s(int64=3) %!d(string=hai) anos
serverctl 747d6bc692 remove comms network leftovers %!s(int64=3) %!d(string=hai) anos
test 7152f6ccd4 remove references to grpc/comms net %!s(int64=3) %!d(string=hai) anos
tls 8f8272aad7 certificate cleanup %!s(int64=3) %!d(string=hai) anos
validation 8f72ecbaa0 refactored logic %!s(int64=3) %!d(string=hai) anos
.dockerignore 974627a9ab reorg of dockerfiles %!s(int64=3) %!d(string=hai) anos
.fpm ab3e643d5e add rpms %!s(int64=3) %!d(string=hai) anos
.gitignore 3e8a0554c2 changed dir name and added to gitignore, removed log %!s(int64=3) %!d(string=hai) anos
CONTRIBUTING.md 95659ef0a5 Create CONTRIBUTING.md %!s(int64=3) %!d(string=hai) anos
Dockerfile 1b10c08f55 updated docker versions %!s(int64=3) %!d(string=hai) anos
LICENSE.txt 375482c16d updating docs %!s(int64=4) %!d(string=hai) anos
README.md 9e4d321508 updated versions across git files %!s(int64=3) %!d(string=hai) anos
SECURITY.md d53bfd6ab1 Update SECURITY.md %!s(int64=3) %!d(string=hai) anos
dev.yaml 747d6bc692 remove comms network leftovers %!s(int64=3) %!d(string=hai) anos
go.mod a3f44f152b Merge pull request #1016 from gravitl/feature_v0.13.0_mq_register %!s(int64=3) %!d(string=hai) anos
go.sum a3f44f152b Merge pull request #1016 from gravitl/feature_v0.13.0_mq_register %!s(int64=3) %!d(string=hai) anos
main.go 7152f6ccd4 remove references to grpc/comms net %!s(int64=3) %!d(string=hai) anos

README.md

a platform for modern, blazing fast virtual networks

WireGuard® Automation from Homelab to Enterprise

  • Peer-to-Peer Mesh Networks
  • Kubernetes and Multi-Cloud Enablement
  • Remote Site Access via Gateway
  • OAuth and Private DNS Features
  • Fine-grained access controls
  • Support for Linux, Mac, Windows, FreeBSD, iPhone, and Android

Get Started in 5 Minutes

For DigitalOcean, use the 1-Click App:
For production-grade installations, visit the Install Docs.
For an HA install using helm on k8s, visit the Helm Repo.

  1. Get a cloud VM with Ubuntu 20.04 and a public IP.
  2. Open ports 443, 80, 53, and 51821-51830/udp on the VM firewall and in cloud security settings.
  3. Run the script (see below for optional configurations):

wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash

Upon completion, the logs will display the instructions to connect various devices. These can also be retrieved from the UI under "Access Keys."

After installing Netmaker, check out the Walkthrough and Getting Started guides to learn more about configuring networks. Or, check out some of our other Tutorials for different use cases, including Kubernetes.

Optional configurations

Deploy a "Hub-And-Spoke VPN" on the server
This will configure a standard VPN (non-meshed) for private internet access, with 10 clients (-c).
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -v true -c 10

Specify Domain and Email
Make sure your wildcard domain is pointing towards the server ip.
wget -qO - https://raw.githubusercontent.com/gravitl/netmaker/master/scripts/nm-quick.sh | sudo bash -s -- -d mynetmaker.domain.com -e [email protected]

Script Options

./nm-quick
-d domain.example.com # specify a wildcard domain for netmaker to use (DNS must point to this server)
-e [email protected] # specify your email (for SSL certificates)
-m true # create a default 'mesh network' (on by default)
-v false # create a default 'VPN network' (off by default)
-c 7 # number of client configs to create (for VPN network, 5 by default)

Why Netmaker + WireGuard?

  • Netmaker automates virtual networks between data centers, clouds, and edge devices, so you don't have to.

  • Kernel WireGuard offers maximum speed, performance, and security.

  • Netmaker is built to scale from the small business to the enterprise.

  • Netmaker with WireGuard can be highly customized for peer-to-peer, site-to-site, Kubernetes, and more.

Get Support

Community Projects

Disclaimer

WireGuard is a registered trademark of Jason A. Donenfeld.

License

Netmaker's source code and all artifacts in this repository are freely available. All versions are published under the Server Side Public License (SSPL), version 1, which can be found here: LICENSE.txt.